Chapter 26. Deploying Certificates to Domain Controllers

One of the most common types of certificates deployed in a Microsoft Windows networking environment is domain controller (also referred to a Kerberos Distribution Center or KDC) certificates. The KDC certificates are used by domain controllers for:

  • Authenticating the domain controllers when a user logs on to the network with a smart card.

  • Securing queries by Lightweight Directory Access Protocol (LDAP) clients when a user queries Active Directory Domain Services (AD DS) using an LDAP Secure Sockets Layer (LDAPS)–protected connection.

  • Securing Simple Mail Transfer Protocol (SMTP) replication traffic between AD DS sites.

Changes in Domain Controller Certificates

Windows Server 2008 includes four ...

Get Windows Server® 2008 PKI and Certificate Security now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.